Redox logo
    R

    Senior Security Engineer

    Redox
    Remote
    Remote
    Senior
    Full Time
    💰$165,000 - $190,000
    remotesecuritycloudkubernetesseniorfull-time

    Requirements

    • •5+ years in security engineering with hands-on delivery across system hardening, security engineering projects, and peer mentorship
    • •Strong technical proficiency in Kubernetes security, including network policy orchestration, admission control (Kyverno), and container hardening protocols
    • •Experience with threat modeling for applications built using Node.js, TypeScript, Python or Go
    • •Hands-on experience supporting secure SDLC practices and CI/CD safeguards using GitHub Actions
    • •Experience hardening Infrastructure-as-Code (Terraform) and managing enterprise secrets via AWS Secrets Manager, Vault, or similar platforms
    • •Solid experience across the vulnerability management lifecycle from triage to production remediation
    • •Ability to apply compliance frameworks like HITRUST and SOC 2 into pragmatic technical controls
    • •Strong written communication skills for documentation and collaboration in a remote asynchronous culture
    • •Proficiency in AI tools and techniques, including prompt engineering and automation using multiple large language model platforms

    What You'll Do

    • •Own Cloud Security Posture Management including Kubernetes and Container security practices, admission control, network policies, image integrity, and environment hardening
    • •Manage comprehensive vulnerability lifecycles, prioritizing remediation based on actual production exposure
    • •Collaborate with Platform Engineering to support secure SDLC and CI/CD safeguards, focusing on artifact validity and pipeline integrity
    • •Convert HITRUST and SOC 2 compliance frameworks into actionable technical configurations and operational controls
    • •Evaluate and secure infrastructure-as-code across all environments
    • •Execute incident response duties, including forensic investigation and blameless post-mortem analyses
    • •Contribute to security standards within Engineering through design reviews, collaborative pairing, and mentorship of peers
    • •Support bug bounty triage and maintain professional engagement with external security researchers

    Nice to Have

    • •Experience securing autonomous agentic loops and tool-calling frameworks, understanding Indirect Prompt Injection and Human-in-the-Loop guardrails
    • •Technical familiarity with securing the Model Context Protocol (MCP) for context isolation, sandboxing, and identity propagation between LLMs and private data sources
    • •Hands-on application of NIST AI RMF, OWASP Top 10 for LLMs in production
    • •Experience with Go, Node.js, or TypeScript
    • •VPN administration or enterprise network security experience
    • •Experience with dependency management tooling like Renovate or Dependabot

    Benefits

    • •100% remote first culture (must be based in the US)
    • •Unlimited Flexible Time Off
    • •15+ Observed Holidays
    • •Rest & R^Charge days (guaranteed a 3-day weekend each month)
    • •R^Charge (6 weeks paid sabbatical + stipend)
    • •401k match 50% for up to 8% on Day 1
    • •Medical/Dental/Vision Benefits on Day 1
    • •HSA & FSA, Life, Disability, Medical Travel & Employee Assistance Program
    • •Paid Parental Leave (16 weeks)
    • •Productivity Stipend & Wellness Fund
    • •Redox Issued MacBook
    • •Virtual and/or in-person Team & Company Events
    • •Stock Options
    • •Employee Referral Bonus Program

    About Redox

    Redox is an EHR integration and healthcare platform that accelerates the development and distribution of healthcare software solutions.

    Madison, WI, US
    100 - 250
    Healthcare